From 441ed785437c1f7cf3a768e1d84bf5e79d1e1422 Mon Sep 17 00:00:00 2001 From: Yusuf Kandemir Date: Tue, 20 Aug 2024 11:56:05 +0300 Subject: [PATCH] feat(app-vite): tighten CSP for BEX (manifest v2) by removing 'unsafe-eval' --- app-vite/templates/bex/default/manifest-v2/manifest.json | 2 +- app-vite/templates/bex/ts/manifest-v2/manifest.json | 2 +- 2 files changed, 2 insertions(+), 2 deletions(-) diff --git a/app-vite/templates/bex/default/manifest-v2/manifest.json b/app-vite/templates/bex/default/manifest-v2/manifest.json index cf7c55e869b..a0d72e15cf5 100644 --- a/app-vite/templates/bex/default/manifest-v2/manifest.json +++ b/app-vite/templates/bex/default/manifest-v2/manifest.json @@ -36,5 +36,5 @@ "" ], - "content_security_policy": "script-src 'self' 'unsafe-eval'; object-src 'self';" + "content_security_policy": "script-src 'self'; object-src 'self';" } diff --git a/app-vite/templates/bex/ts/manifest-v2/manifest.json b/app-vite/templates/bex/ts/manifest-v2/manifest.json index cf7c55e869b..a0d72e15cf5 100644 --- a/app-vite/templates/bex/ts/manifest-v2/manifest.json +++ b/app-vite/templates/bex/ts/manifest-v2/manifest.json @@ -36,5 +36,5 @@ "" ], - "content_security_policy": "script-src 'self' 'unsafe-eval'; object-src 'self';" + "content_security_policy": "script-src 'self'; object-src 'self';" }